cbcvebase.

Sap Se Sap 3D Visual Enterprise Viewer vulnerabilities

127 known vulnerabilities affecting sap_se/sap_3d_visual_enterprise_viewer.

Total CVEs
127
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH45MEDIUM73LOW9

Vulnerabilities

Page 3 of 7
CVE-2020-26817P4HIGHCVSS 7.8fixed in 92020-11-10
CVE-2020-26817 [HIGH] CWE-20 CVE-2020-26817: SAP 3D Visual Enterprise Viewer, version - 9, allows an user to open manipulated HPGL file received SAP 3D Visual Enterprise Viewer, version - 9, allows an user to open manipulated HPGL file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
nvd
CVE-2022-41188P4HIGHCVSS 7.8v92022-10-11
CVE-2022-41188 [HIGH] CWE-119 CVE-2022-41188: Due to lack of proper memory management, when a victim opens manipulated Wavefront Object (.obj, Obj Due to lack of proper memory management, when a victim opens manipulated Wavefront Object (.obj, ObjTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-41192P4HIGHCVSS 7.8v92022-10-11
CVE-2022-41192 [HIGH] CWE-119 CVE-2022-41192: Due to lack of proper memory management, when a victim opens manipulated Jupiter Tesselation (.jt, J Due to lack of proper memory management, when a victim opens manipulated Jupiter Tesselation (.jt, JTReader.x3d) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-41197P4HIGHCVSS 7.8v92022-10-11
CVE-2022-41197 [HIGH] CWE-119 CVE-2022-41197: Due to lack of proper memory management, when a victim opens a manipulated VRML Worlds (.wrl, vrml.x Due to lack of proper memory management, when a victim opens a manipulated VRML Worlds (.wrl, vrml.x3d) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-41194P4HIGHCVSS 7.8v92022-10-11
CVE-2022-41194 [HIGH] CWE-119 CVE-2022-41194: Due to lack of proper memory management, when a victim opens a manipulated Encapsulated Postscript ( Due to lack of proper memory management, when a victim opens a manipulated Encapsulated Postscript (.eps, ai.x3d) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2020-6321P4MEDIUMCVSS 6.5fixed in 92020-09-09
CVE-2020-6321 [MEDIUM] CWE-824 CVE-2020-6321: SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated U3D file received fr SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated U3D file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
nvd
CVE-2021-33681P4MEDIUMCVSS 6.5fixed in 9.02021-07-14
CVE-2021-33681 [MEDIUM] CWE-787 CVE-2021-33681: SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received fr SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received from untrusted sources which causes out of bounds write and causes the application to crash and becoming temporarily unavailable until the user restarts the application.
nvd
CVE-2021-38174P4MEDIUMCVSS 6.5v<2021-09-14
CVE-2021-38174 [MEDIUM] CVE-2021-38174: When a user opens manipulated files received from untrusted sources in SAP 3D Visual Enterprise View When a user opens manipulated files received from untrusted sources in SAP 3D Visual Enterprise Viewer version - 9, the application crashes and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-27654P4MEDIUMCVSS 6.5v92022-04-12
CVE-2022-27654 [MEDIUM] CWE-20 CVE-2022-27654: When a user opens a manipulated Photoshop Document (.psd, 2d.x3d) received from untrusted sources in When a user opens a manipulated Photoshop Document (.psd, 2d.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-27655P4MEDIUMCVSS 6.5v92022-04-12
CVE-2022-27655 [MEDIUM] CWE-20 CVE-2022-27655: When a user opens a manipulated Universal 3D (.u3d, 3difr.x3d) received from untrusted sources in SA When a user opens a manipulated Universal 3D (.u3d, 3difr.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-26106P4MEDIUMCVSS 6.5v92022-04-12
CVE-2022-26106 [MEDIUM] CWE-20 CVE-2022-26106: When a user opens a manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) received from untrust When a user opens a manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-26107P4MEDIUMCVSS 6.5v92022-04-12
CVE-2022-26107 [MEDIUM] CWE-20 CVE-2022-26107: When a user opens a manipulated Jupiter Tesselation (.jt, JTReader.x3d) received from untrusted sour When a user opens a manipulated Jupiter Tesselation (.jt, JTReader.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-22537P4MEDIUMCVSS 6.5v9.02022-02-09
CVE-2022-22537 [MEDIUM] CWE-20 CVE-2022-22537: When a user opens a manipulated Tagged Image File Format (.tiff, 2d.x3d)) received from untrusted so When a user opens a manipulated Tagged Image File Format (.tiff, 2d.x3d)) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application. The file format details along with their CVE relevant information can be found below.
nvd
CVE-2021-33680P4MEDIUMCVSS 6.5fixed in 9.02021-07-14
CVE-2021-33680 [MEDIUM] CWE-120 CVE-2021-33680: SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received fr SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received from untrusted sources which causes buffer overflow and causes the application to crash and becoming temporarily unavailable until the user restarts the application.
nvd
CVE-2022-22538P4MEDIUMCVSS 6.5v9.02022-02-09
CVE-2022-22538 [MEDIUM] CWE-20 CVE-2022-22538: When a user opens a manipulated Adobe Illustrator file format (.ai, ai.x3d) received from untrusted When a user opens a manipulated Adobe Illustrator file format (.ai, ai.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application. The file format details along with their CVE relevant information can be found below.
nvd
CVE-2022-22539P4MEDIUMCVSS 6.5v9.02022-02-09
CVE-2022-22539 [MEDIUM] CWE-20 CVE-2022-22539: When a user opens a manipulated JPEG file format (.jpg, 2d.x3d) received from untrusted sources in S When a user opens a manipulated JPEG file format (.jpg, 2d.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application. The file format details along with their CVE relevant information can be found below.
nvd
CVE-2022-26109P4MEDIUMCVSS 6.5v92022-04-12
CVE-2022-26109 [MEDIUM] CWE-20 CVE-2022-26109: When a user opens a manipulated Portable Document Format (.pdf, PDFView.x3d) received from untrusted When a user opens a manipulated Portable Document Format (.pdf, PDFView.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2022-26108P4MEDIUMCVSS 6.5v92022-04-12
CVE-2022-26108 [MEDIUM] CWE-20 CVE-2022-26108: When a user opens a manipulated Picture Exchange (.pcx, 2d.x3d) received from untrusted sources in S When a user opens a manipulated Picture Exchange (.pcx, 2d.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
nvd
CVE-2020-6315P4MEDIUMCVSS 5.5fixed in 92020-10-20
CVE-2020-6315 [MEDIUM] CVE-2020-6315: SAP 3D Visual Enterprise Viewer, version 9, allows an attacker to send certain manipulated file to t SAP 3D Visual Enterprise Viewer, version 9, allows an attacker to send certain manipulated file to the victim, which can lead to leakage of sensitive information when the victim loads the malicious file into the VE viewer, leading to Information Disclosure.
nvd
CVE-2022-32238P4MEDIUMCVSS 5.5v9.02022-06-14
CVE-2022-32238 [MEDIUM] CWE-20 CVE-2022-32238: When a user opens manipulated Encapsulated Post Script (.eps, ai.x3d) files received from untrusted When a user opens manipulated Encapsulated Post Script (.eps, ai.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable to the user until restart of the application.
nvd
Sap Se Sap 3D Visual Enterprise Viewer vulnerabilities | cvebase